Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-20212: Cisco Security Advisory: ClamAV AutoIt Module Denial of Service Vulnerability

A vulnerability in the AutoIt module of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to a logic error in the memory management of an affected device. An attacker could exploit this vulnerability by submitting a crafted AutoIt file to be scanned by ClamAV on the affected device. A successful exploit could allow the attacker to cause the ClamAV scanning process to restart unexpectedly, resulting in a DoS condition.

CVE
#vulnerability#windows#cisco#dos#perl#auth
  • For information about fixed software releases, consult the Cisco bugs identified in the Vulnerable Products section of this advisory.

    When considering software upgrades, customers are advised to regularly consult the advisories for Cisco products, which are available from the Cisco Security Advisories page, to determine exposure and a complete upgrade solution.

    In all cases, customers should ensure that the devices to be upgraded contain sufficient memory and confirm that current hardware and software configurations will continue to be supported properly by the new release. If the information is not clear, customers are advised to contact the Cisco Technical Assistance Center (TAC) for their contracted maintenance providers.

    Fixed Releases

    Customers are advised to upgrade to an appropriate fixed software release as indicated in the following tables:

    Affected Cisco Software Platform

    First Fixed Release

    Secure Endpoint Connector for Windows

    8.1.7.215851

    Secure Endpoint Private Cloud

    3.8.0 or later with updated connectors2

    1. Updated releases of Cisco Secure Endpoint are available through the Cisco Secure Endpoint portal. Depending on the configured policy, Cisco Secure Endpoint will automatically update.

    2. Affected releases of Cisco Secure Endpoint clients for Cisco Secure Endpoint Private Cloud have been updated in the connectors repository. Customers will get these connector updates through normal content update processes.

    The Cisco Product Security Incident Response Team (PSIRT) validates only the affected and fixed release information that is documented in this advisory.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda